diff options
Diffstat (limited to 'ssh-agent.1')
-rw-r--r-- | ssh-agent.1 | 17 |
1 files changed, 15 insertions, 2 deletions
diff --git a/ssh-agent.1 b/ssh-agent.1 index c4b50bbdf..372adbe7c 100644 --- a/ssh-agent.1 +++ b/ssh-agent.1 | |||
@@ -1,4 +1,4 @@ | |||
1 | .\" $OpenBSD: ssh-agent.1,v 1.62 2015/11/15 23:54:15 jmc Exp $ | 1 | .\" $OpenBSD: ssh-agent.1,v 1.63 2016/11/30 03:07:37 djm Exp $ |
2 | .\" | 2 | .\" |
3 | .\" Author: Tatu Ylonen <ylo@cs.hut.fi> | 3 | .\" Author: Tatu Ylonen <ylo@cs.hut.fi> |
4 | .\" Copyright (c) 1995 Tatu Ylonen <ylo@cs.hut.fi>, Espoo, Finland | 4 | .\" Copyright (c) 1995 Tatu Ylonen <ylo@cs.hut.fi>, Espoo, Finland |
@@ -34,7 +34,7 @@ | |||
34 | .\" (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF | 34 | .\" (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF |
35 | .\" THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. | 35 | .\" THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. |
36 | .\" | 36 | .\" |
37 | .Dd $Mdocdate: November 15 2015 $ | 37 | .Dd $Mdocdate: November 30 2016 $ |
38 | .Dt SSH-AGENT 1 | 38 | .Dt SSH-AGENT 1 |
39 | .Os | 39 | .Os |
40 | .Sh NAME | 40 | .Sh NAME |
@@ -47,6 +47,7 @@ | |||
47 | .Op Fl a Ar bind_address | 47 | .Op Fl a Ar bind_address |
48 | .Op Fl E Ar fingerprint_hash | 48 | .Op Fl E Ar fingerprint_hash |
49 | .Op Fl t Ar life | 49 | .Op Fl t Ar life |
50 | .Op Fl P Ar pkcs11_whitelist | ||
50 | .Op Ar command Op Ar arg ... | 51 | .Op Ar command Op Ar arg ... |
51 | .Nm ssh-agent | 52 | .Nm ssh-agent |
52 | .Op Fl c | s | 53 | .Op Fl c | s |
@@ -121,6 +122,18 @@ The default is | |||
121 | Kill the current agent (given by the | 122 | Kill the current agent (given by the |
122 | .Ev SSH_AGENT_PID | 123 | .Ev SSH_AGENT_PID |
123 | environment variable). | 124 | environment variable). |
125 | .It Fl P | ||
126 | Specify a pattern-list of acceptable paths for PKCS#11 shared libraries | ||
127 | that may be added using the | ||
128 | .Fl s | ||
129 | option to | ||
130 | .Xr ssh-add 1 . | ||
131 | The default is to allow loading PKCS#11 libraries from | ||
132 | .Dq /usr/lib/*,/usr/local/lib/* . | ||
133 | PKCS#11 libraries that do not match the whitelist will be refused. | ||
134 | See PATTERNS in | ||
135 | .Xr ssh_config 5 | ||
136 | for a description of pattern-list syntax. | ||
124 | .It Fl s | 137 | .It Fl s |
125 | Generate Bourne shell commands on | 138 | Generate Bourne shell commands on |
126 | .Dv stdout . | 139 | .Dv stdout . |